{"id":"CLSA-2025-1766598218","summary":"opensc: Fix of 4 CVEs","details":"- CVE-2024-45616: fix insufficient control of APDU buffer and its length\n- CVE-2024-45615: initialize uninitialized variables\n- CVE-2024-45617: fix insufficient or missing checking of return values\n- CVE-2024-45620: fix incorrect handling length of buffers or files in pkcs15init","modified":"2026-05-27T11:33:17.047221446Z","published":"2025-12-24T17:43:42Z","upstream":["CVE-2024-45615","CVE-2024-45616","CVE-2024-45617","CVE-2024-45620"],"references":[{"type":"ADVISORY","url":"https://errata.tuxcare.com/els_os/almalinux9.2esu/CLSA-2025-1766598218.html"}],"affected":[{"package":{"name":"opensc","ecosystem":"TuxCare:AlmaLinux:9.2","purl":"pkg:rpm/tuxcare/opensc?distro=almalinux-9.2"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0.22.0-2.el9_2.tuxcare.els4"}]}],"database_specific":{"source":"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/almalinux9.2esu/CLSA-2025-1766598218.json"}}],"schema_version":"1.7.5"}